Azure Security Center Deprecated

Deprecated. Unified security management and advanced threat protection across hybrid cloud workloads.

Analytics & SIEM · Deprecated Content (Deprecated)

Details

IDAzure Security Center
ProviderMicrosoft
CategoryAnalytics & SIEM
From Version5.0.0
Docker Imagedemisto/python:2.7.18.20958

Configuration parameters

  • server_url — Microsoft Azure Management URL
  • tenant_id — Tenant ID (received from the admin consent - see Detailed Instructions (?) section) (required)
  • token — Token (received from the admin consent - see detailed instructions (?)) (required)
  • unsecure — Trust any certificate (not secure)
  • proxy — Use system proxy settings

Commands (8)

  • azure-sc-get-aps Deprecated

    Returns details of a specific auto provisioning setting.

  • azure-sc-get-atp Deprecated

    Returns the Advanced Threat Protection setting.

  • azure-sc-list-alert Deprecated

    Lists alerts for the subscription according to the specified filters.

  • azure-sc-list-aps Deprecated

    Lists auto provisioning settings in the subscription.

  • azure-sc-list-jit Deprecated

    Lists all policies for protecting resources using Just-in-Time access control.

  • azure-sc-list-storage Deprecated

    Lists all the storage accounts available under the subscription.

  • azure-sc-update-aps Deprecated

    Updates a specific auto provisioning setting.

  • azure-sc-update-atp Deprecated

    Updates Advanced Threat Detection settings.

To grant access to Microsoft Security Center, an admin needs to approve Demisto using an admin consent flow. To start the admin consent flow, click [here](https://demistobot.demisto.com/azuresc-sub).
  After authorizing the Demisto app, you'll receive a tenant ID, which you should enter in the integration instance settings.